[Secure-testing-team] Re: Bug#365533: CVE-2006-1896: Admin command execution

Thijs Kinkhorst kink at squirrelmail.org
Tue May 23 10:36:25 UTC 2006


tags 365533 pending
thanks

On Thu, 2006-05-18 at 05:21 +0200, Moritz Muehlenhoff wrote:
> > W.r.t. unstable, I will look into that very soon, we'll need to be
> > upgrading to a new upstream aswell. I'll check whether that can be done
> > in the short term, if not, I'll prepare a patched package.
> 
> Ok, thanks.

Thanks for fixing stable. I've also prepared a fix for sid now. The
difference with the previous version in sid is the same patch as for
sarge, plus I've added a debconf translation.

Problem is that Jeroen announced that he's on a trip through Mexico now,
so I'm left without someone to upload. Maybe the (testing) security team
or any other DD interested in getting this bug fixed, can take a look
and upload?

Please find the updated packages here:
http://www.a-eskwadraat.nl/~kink/phpbb/

Packages have been tested and work here.


thanks,
Thijs
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20060523/09d65eab/attachment.pgp


More information about the Secure-testing-team mailing list